ข้ามไปที่เนื้อหาหลัก

Digital Forensic and Incident Response Investigator

00069933781

What makes Cognizant a unique place to work? The combination of rapid growth and an international and innovative environment! This is creating many opportunities for people like YOU — people with an entrepreneurial spirit who want to make a difference in this world.

At Cognizant, together with your colleagues from all around the world, you will collaborate on creating solutions for the world's leading companies and help them become more flexible, more innovative, and successful. Moreover, this is your chance to be part of the success story.

Position Summary:

As a member of Corporate Security’s (CS) Global Cyber Operations (GCO) team, DFIR Investigator acts as the second line of cyber incident response focusing on 9/5 (Weekend – on call) investigations of cyber incidents reported by various stake holders. The role is responsible for leading the organization's cyber incident response efforts, including threat response, forensic investigation, and reporting. This role acts as the primary escalation point for complex cyber security incidents.

Mandatory Skills:

•Experience with forensic tools (e.g., EnCase, FTK, Volatility,).
•Hands-on experience with SIEM platforms (e.g., Splunk, Cortex, QRadar), EDRs (e.g., MDE, Cisco AMP, CrowdStrike, Palo Alto).
•Strong understanding of TCP/IP, network forensics, and intrusion analysis.
•Familiarity with threat hunting and threat intelligence frameworks like MITRE ATT&CK.
•Scripting skills in Python, PowerShell, or Bash to support automation and analysis.

Duties and Responsibilities:

•Lead end-to-end cyber incident response operations including triage, containment, eradication, and recovery.
•Conduct comprehensive digital forensic investigations (disk, memory, network) and ensure proper chain of custody.
•Analyze logs and telemetry data from SIEM, EDR, and other security tools to identify IOCs and root cause.
•Use frameworks like MITRE ATT&CK to guide incident analysis and improve detection and response capabilities.
•Develop and maintain incident response playbooks and provide recommendations to automate response tasks using SOAR tools.
•Create detailed incident reports, RCA documents, and post-incident recommendations.
•Collaborate with SOC, IT, Legal, and Compliance teams during incident handling and investigations.
•Mentor junior analysts and conduct periodic IR tabletop exercises and red-blue team simulations.
•Capture the gaps identified during investigations and prepare concise Risk statements to escalate to the Corporate Security Risk team (CAR) for action.
•Promote risk mitigation strategies and monitor remediation timelines.
•Develop and publish articles and blogs focusing on lessons learned and security awareness for employees.
•Evaluate and Implement solutions for malware analysis and advanced memory forensics to deepen investigation capabilities.
•Participate in collaborative platforms like threat-sharing communities (e.g., ISACs) to exchange best practices and emerging threat indicators.
•Leverage insights gained during investigations to work closely with Corporate Security functions, including threat intelligence, vulnerability management, and security engineering teams, to create robust use cases for improved threat detection.
•Make fast, high-stakes decisions with limited information
•Handle sensitive evidence with discretion and professionalism

Qualifications & Certifications (Optional):

•Education: Bachelor’s degree in computer science, Information Security, or a related field.
•Experience: 5-10 years of experience in cybersecurity, preferably in threat detection and incident response
•Certifications: Relevant certifications such as
•GCFA – GIAC Certified Forensic Analyst
•GCIH – GIAC Certified Incident Handler
•GCIA – GIAC Certified Intrusion Analyst
•CHFI – Computer Hacking Forensic Investigator
•OSCP/OSCE – Offensive Security Certifications
•Ence – EnCase Certified Examiner or equivalent are preferred

Salary Range: >$100,000
Date of Posting: 12-Aug-26

Next Steps: If you feel this opportunity suits you, or Cognizant is the type of organization you would like to join, we want to have a conversation with you! Please apply directly with us.

For a complete list of open opportunities with Cognizant, visit http://www.cognizant.com/careers. Cognizant is committed to providing Equal Employment Opportunities. Successful candidates will be required to undergo a background check.


ข่าวประชาสัมพันธ์แบบสำเร็จรูปของ Cognizant 
Cognizant(NASDAQ: CTSH) คือผู้สร้าง AI และผู้ให้บริการด้านเทคโนโลยี ซึ่งเชื่อมช่องว่างระหว่างการลงทุนใน AI และมูลค่าขององค์กรด้วยการสร้างโซลูชัน AI แบบครบวงจรให้แก่ไคลเอนต์ของเรา ความเชี่ยวชาญเชิงลึกด้านอุตสาหกรรม กระบวนการ และวิศวกรรมของเรา ช่วยให้เราผสานบริบทเฉพาะขององค์กรเข้ากับระบบเทคโนโลยีเพื่อเพิ่มศักยภาพมนุษย์ สร้างผลลัพธ์ที่จับต้องได้ และช่วยให้องค์กรระดับโลกก้าวนำหน้าอยู่เสมอในโลกที่เปลี่ยนแปลงไป ดูวิธีดำเนินการได้ที่ cognizant.ai หรือ @cognizant

ข้อมูลการจ้างงานเพิ่มเติม
ข้อมูลเกี่ยวกับค่าตอบแทนมีความถูกต้อง ณ วันที่ประกาศรับสมัครงานนี้ Cognizant ขอสงวนสิทธิ์ในการแก้ไขข้อมูลดังกล่าวได้ตลอดเวลา ภายใต้กฎหมายที่เกี่ยวข้อง

ผู้สมัครอาจถูกขอให้เข้ารับการสัมภาษณ์แบบพบตัวต่อตัวหรือผ่านการประชุมทางวิดีโอ นอกจากนี้ ผู้สมัครอาจถูกขอให้นำเอกสารประจำตัวที่ออกโดยหน่วยงานของรัฐ หรือบัตรประจำตัวที่ออกโดยรัฐบาลซึ่งยังมีผลบังคับใช้ มาแสดงในระหว่างการสัมภาษณ์แต่ละครั้ง

Cognizant เป็นนายจ้างที่ให้โอกาสอย่างเท่าเทียม การสมัครและการพิจารณาคุณสมบัติของคุณจะไม่ถูกตัดสินจากเชื้อชาติ สีผิว เพศ ศาสนา ความเชื่อ รสนิยมทางเพศ อัตลักษณ์ทางเพศ สัญชาติ ความพิการ ข้อมูลทางพันธุกรรม การตั้งครรภ์ สถานะทหารผ่านศึก หรือคุณลักษณะอื่นใดที่ได้รับการคุ้มครองตามกฎหมายของรัฐบาลกลาง รัฐ หรือท้องถิ่น

สวัสดิการที่ช่วยให้คุณเติบโตและก้าวหน้า

โปรแกรมสวัสดิการของเราถูกออกแบบโดยคำนึงถึงคุณเป็นหลัก เพื่อให้คุณได้ใช้ชีวิตอย่างสมดุล เปี่ยมด้วยความหมาย และมีสุขภาพที่ดี

ภาพวาดเส้นสีน้ําเงินของพืชที่มีใบ

ความเป็นอยู่ทางการเงินที่มั่นคง

เราตรวจสอบข้อมูลตลาดอย่างสม่ำเสมอเพื่อให้มั่นใจว่าค่าตอบแทนสะท้อนถึงคุณค่าและผลงานที่คุณนำมาให้ สวัสดิการของคุณไม่ได้จำกัดเพียงแค่ค่าตอบแทนเท่านั้น แต่อาจรวมถึงแผนเกษียณอายุ การให้ความรู้ด้านการเงิน และอื่น ๆ

Stay Healthy Midnight Blue RGB

สุขภาพกายและสุขภาพจิต

เราเสริมพลังให้คุณให้ความสำคัญกับสุขภาวะของตนเอง ผ่านวันลาพักผ่อนที่ได้รับค่าจ้าง การทำงานที่ยืดหยุ่นตามความเหมาะสม แผนประกันสุขภาพ การให้คำปรึกษา โปรแกรม Mental Health Allyship ของเรา และสิทธิประโยชน์อื่น ๆ อีกมากมาย 

Build The Career You Want Midnight Blue RGB

เส้นทางอาชีพของคุณ ในแบบของคุณ

ด้วยตำแหน่งงานมากกว่า 350,000 ตำแหน่งที่ Cognizant คุณจะมีโอกาสได้สำรวจเทคโนโลยี อุตสาหกรรม และสถานที่ทำงานใหม่ ๆ พร้อมทั้งพัฒนาทักษะที่จำเป็นเพื่อเติบโตในเส้นทางอาชีพของคุณ

Making A Meaningful Impact Midnight Blue RGB

ผลกระทบที่เกิดขึ้นจริง

ลองนึกถึงแบรนด์ชั้นนำที่คุณพึ่งพาในชีวิตประจำวัน มีความเป็นไปได้สูงที่แบรนด์เหล่านั้นจะพึ่งพาเราในการช่วยเสริมความแข็งแกร่งให้กับธุรกิจของพวกเขา ที่นี่ คุณจะเปลี่ยนแนวคิดที่กล้าคิดกล้าทำให้กลายเป็นโซลูชันที่ช่วยยกระดับคุณภาพชีวิตของผู้คนทั่วโลก

ยังไม่พบโอกาสที่เหมาะสมใช่หรือไม่?

รับข้อมูลอัปเดตล่าสุดเกี่ยวกับโอกาสในการทำงาน กิจกรรมการสรรหาบุคลากร และข่าวสารของบริษัท—ซึ่งคัดสรรมาเพื่อคุณโดยเฉพาะ!

ไม่พลาดทุกความเคลื่อนไหว